<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: How to filter syslog messages in Smartlog in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/How-to-filter-syslog-messages-in-Smartlog/m-p/67199#M13781</link>
    <description>&lt;P&gt;Try to add "blade:syslog" in the query.&lt;/P&gt;</description>
    <pubDate>Tue, 12 Nov 2019 15:45:42 GMT</pubDate>
    <dc:creator>D_W</dc:creator>
    <dc:date>2019-11-12T15:45:42Z</dc:date>
    <item>
      <title>How to filter syslog messages in Smartlog</title>
      <link>https://community.checkpoint.com/t5/General-Topics/How-to-filter-syslog-messages-in-Smartlog/m-p/66963#M13739</link>
      <description>&lt;P&gt;I configured my gateway to send its syslog messages to the SmartCenter Server according to sk102995.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;To view the syslog messages in Smrtview Tracker, is says:&lt;/P&gt;&lt;P&gt;"In SmartView Tracker log, the informational field will should show "&lt;EM&gt;...system daemons syslog_severity...&lt;/EM&gt;"&lt;/P&gt;&lt;P&gt;There is no way to define a query (in R80.20) for the "informational" Field. There is a field "Information", but again, no query available.&lt;/P&gt;&lt;P&gt;What did I miss?&lt;/P&gt;</description>
      <pubDate>Sat, 09 Nov 2019 11:39:02 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/How-to-filter-syslog-messages-in-Smartlog/m-p/66963#M13739</guid>
      <dc:creator>peter_schumache</dc:creator>
      <dc:date>2019-11-09T11:39:02Z</dc:date>
    </item>
    <item>
      <title>Re: How to filter syslog messages in Smartlog</title>
      <link>https://community.checkpoint.com/t5/General-Topics/How-to-filter-syslog-messages-in-Smartlog/m-p/66964#M13740</link>
      <description>&lt;P&gt;How did you set this up? It seems that you made it the old way&lt;/P&gt;&lt;P&gt;On GWs R80.X you can go to the System Logging (Gateway, not management) section on the web user interface, once there you will find a check box to send syslog messages to the management server. Page 190 from admin guide:&lt;/P&gt;&lt;P&gt;&lt;A href="https://dl3.checkpoint.com/paid/8d/8dbd7585030bbad76a1e65c3b458f74c/CP_R80.10_Gaia_AdminGuide.pdf?HashKey=1573308551_f3ebcc1f850da0949464ce4b49be105a&amp;amp;xtn=.pdf" target="_self"&gt;https://dl3.checkpoint.com/paid/8d/8dbd7585030bbad76a1e65c3b458f74c/CP_R80.10_Gaia_AdminGuide.pdf?HashKey=1573308551_f3ebcc1f850da0949464ce4b49be105a&amp;amp;xtn=.pdf&lt;/A&gt;&lt;/P&gt;&lt;P&gt;After doing this try some failed and valid log ins to the configured gateway check the logs.&lt;/P&gt;&lt;P&gt;Hope it helps!&lt;/P&gt;&lt;P&gt;___&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 09 Nov 2019 12:13:03 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/How-to-filter-syslog-messages-in-Smartlog/m-p/66964#M13740</guid>
      <dc:creator>FedericoMeiners</dc:creator>
      <dc:date>2019-11-09T12:13:03Z</dc:date>
    </item>
    <item>
      <title>Re: How to filter syslog messages in Smartlog</title>
      <link>https://community.checkpoint.com/t5/General-Topics/How-to-filter-syslog-messages-in-Smartlog/m-p/66966#M13741</link>
      <description>&lt;P&gt;I did it the new way, saying "send syslogs to SmartCenter".&lt;/P&gt;&lt;P&gt;The problem lies in prooving it. How can I display in Smartlog ONLY the messages from syslog?&lt;/P&gt;</description>
      <pubDate>Sat, 09 Nov 2019 13:19:03 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/How-to-filter-syslog-messages-in-Smartlog/m-p/66966#M13741</guid>
      <dc:creator>peter_schumache</dc:creator>
      <dc:date>2019-11-09T13:19:03Z</dc:date>
    </item>
    <item>
      <title>Re: How to filter syslog messages in Smartlog</title>
      <link>https://community.checkpoint.com/t5/General-Topics/How-to-filter-syslog-messages-in-Smartlog/m-p/67199#M13781</link>
      <description>&lt;P&gt;Try to add "blade:syslog" in the query.&lt;/P&gt;</description>
      <pubDate>Tue, 12 Nov 2019 15:45:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/How-to-filter-syslog-messages-in-Smartlog/m-p/67199#M13781</guid>
      <dc:creator>D_W</dc:creator>
      <dc:date>2019-11-12T15:45:42Z</dc:date>
    </item>
  </channel>
</rss>

